~wgrant/ubuntu-cve-tracker/main

« back to all changes in this revision

Viewing changes to active/CVE-2007-2025

  • Committer: Kees Cook
  • Date: 2008-09-19 21:55:36 UTC
  • Revision ID: kees.cook@canonical.com-20080919215536-xv2fttw2hoozmih4
update all Publication Dates

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
PublicDate: 2007-04-13
1
2
Candidate: CVE-2007-2025
2
3
References:
3
4
Description:
 
5
 Unrestricted file upload vulnerability in the UpLoad feature
 
6
 (lib/plugin/UpLoad.php) in PhpWiki 1.3.11p1 allows remote attackers to
 
7
 upload arbitrary PHP files with a double extension, as demonstrated by
 
8
 .php.3, which is interpreted by Apache as being a valid PHP file.
4
9
Ubuntu-Description:
5
10
Notes:
6
11
Bugs: